Key Responsibilities
IAM & Okta Solution Architecture
- Lead discovery and requirements-gathering workshops with business, security, application, and technology stakeholders.
- Define the overall Okta IAM and Customer Identity architecture aligned with enterprise security and architecture standards.
- Design scalable solutions using Okta Identity Cloud, Okta Identity Governance (OIG), Okta Workflows, Universal Directory (UD), Profile Editor, Group Rules, and Lifecycle Management.
- Define enterprise Identity and Access Management (IAM) strategies, architecture principles, technical standards, and implementation roadmaps.
- Design authentication, authorization, Single Sign-On (SSO), Multi-Factor Authentication (MFA), session management, and access control strategies.
- Define identity lifecycle management processes covering Joiner, Mover, and Leaver (JML) scenarios.
- Design user onboarding and provisioning strategies for manual provisioning, CSV-based provisioning, and future HR-driven provisioning.
Okta Identity Governance & Administration
- Design and implement Okta Identity Governance (OIG/IGA) capabilities.
- Define solutions for Access Requests, Access Certifications, Entitlement Management, Resource Catalogs, approval workflows, and governance policies.
- Design role-based access control (RBAC) and access governance models.
- Define Segregation of Duties (SoD) controls and identity governance best practices.
- Establish appropriate access approval, certification, review, and compliance processes.
Okta Workflows & Automation
- Design Okta Workflows solutions for identity lifecycle automation, provisioning, deprovisioning, approvals, notifications, and integrations.
- Review and approve workflows, custom connectors, integrations, and automation developed by engineering teams.
- Define reusable automation patterns and integration standards.
- Evaluate integration approaches for applications and systems without native Okta connectors.
Federation, SSO & Application Integration
- Design enterprise federation and SSO architectures using:
- SAML 2.0
- OAuth 2.0
- OpenID Connect (OIDC)
- SCIM
- Org2Org federation
- Design SAML/OIDC trust relationships, attribute mappings, claims, authentication policies, and federation patterns.
- Collaborate with application owners to define application onboarding, access models, authentication requirements, provisioning, and SSO integration.
- Design integrations between Okta and external HR systems, enterprise applications, directories, and identity sources.
Technical Leadership & Governance
- Provide technical leadership throughout discovery, architecture, design, implementation, testing, deployment, and production support.
- Guide IAM engineering teams in implementing approved architecture and solution designs.
- Review and approve solution designs, architecture diagrams, workflows, integrations, custom connectors, and technical documentation.
- Define Preview and Production tenant management, deployment, configuration promotion, and environment management strategies.
- Ensure solutions comply with enterprise security standards, IAM policies, governance requirements, and architecture principles.
- Conduct technical risk assessments and identify architecture, security, integration, and implementation risks.
- Support project planning, effort estimation, technical dependency management, and stakeholder communication.
Mandatory Skills
- 12–20 years of experience in Identity and Access Management (IAM), Identity Governance, Cybersecurity, or related technology domains.
- Robust hands-on and architectural expertise in Okta Identity Cloud.
- Strong expertise in Okta Identity Governance (OIG / Okta IGA).
- Solid expertise in Okta Workflows.
- Proven experience as an IAM Solutions Architect / Identity Solutions Architect.
- Extensive experience designing and implementing enterprise IAM solutions.
- Strong knowledge of:
- Okta Universal Directory (UD)
- Okta Profile Editor
- Okta Group Rules
- Okta Authentication Policies
- Okta Lifecycle Management
- Okta SSO
- Okta MFA
- Strong experience with identity lifecycle management and Joiner-Mover-Leaver (JML) processes.
- Strong understanding of Identity Governance and Administration (IGA) concepts and solutions.
- Experience with Access Requests, Access Certifications, Entitlement Management, Resource Catalogs, approval workflows, and governance policies.
- Strong understanding of SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), SCIM, and federation.
- Experience designing Org2Org federation and enterprise SSO architectures.
- Experience integrating HR systems and enterprise applications with Okta.
- Strong understanding of RBAC, Segregation of Duties (SoD), Zero Trust, identity governance, and enterprise security principles.
- Excellent stakeholder management, communication, solution design, technical documentation, architecture, and technical leadership skills.
📌 IAM Solutions Architect - Okta (Bengaluru)
🏢 UST
📍 Bengaluru